Step J. Check The Certificate Manager's Ocsp Service Status Again; Setting Up A Remote Ocsp Responder - Netscape MANAGEMENT SYSTEM 6.0 Installation And Setup Manual

Hide thumbs Also See for NETSCAPE MANAGEMENT SYSTEM 6.0:
Table of Contents

Advertisement

Select the certificate you revoked and click View.
3.
In the View Security Certificate dialog box that appears, look for a message
that says that the certificate could not be verified.

Step J. Check the Certificate Manager's OCSP Service Status Again

Check the Certificate Manager's OCSP-service status again to verify that these
things happened:
The browser sent an OCSP query to the Certificate Manager (this response was
initiated when you clicked the View button).
The Certificate Manager sent an OCSP response to the browser.
The browser used that response to validate the certificate and informed you of
its status (that the certificate could not be verified).
To check the Certificate Manager's OCSP-service status for verification:
Go to the Certificate Manager's status page.
1.
Reload the page (hold down the Shift key and click on the browser's Reload
2.
icon.)
Compare the information to the one you noted in Step G above.
3.
The updated statistics should indicate that Personal Security Manager queried
the Certificate Manager about the status of the certificate and in response, the
Certificate Manager informed Personal Security Manager that the certificate is
revoked.

Setting Up a Remote OCSP Responder

You can configure a Certificate Manager to publish CRLs to an online certificate
validation authority, such as the one included with Certificate Management
System, and then issue end-entity certificates with Authority Information Access
extension pointing to the location at which the OCSP responder waits for queries
about revocation status of certificates.
This section explains how to set up a Certificate Manager functioning as a root CA
to publish CRLs to a remote Online Certificate Status Manager and configure
OCSP-compliant clients to query the Online Certificate Status Manager for
revocation status of certificates being validated.
Setting Up a Remote OCSP Responder
Chapter 21
Setting Up an OCSP Responder
687

Advertisement

Table of Contents
loading

This manual is also suitable for:

Certificate management system 6.0

Table of Contents